IT security culture must start from the top

Published: 24 September 2004 y., Friday
Senior executives need to help companies build an IT security-conscious culture from the top down, according to new research by Ernst & Young. Respondents to its Global Information Security Survey 2004 named lack of security awareness by users as the top obstacle to information security. But only 28 per cent of them listed raising employee information security awareness as a top initiative in 2004. "I think the issue of security awareness has been delegated or abdicated to technical professionals some levels down in organisations," said Jan Babiak, managing partner of Ernst & Young's information security services in the UK. Ernst & Young advised that companies should place more emphasis on creating a security-conscious culture that includes setting the right 'tone at the top'. But only one in five companies saw it as a chief executive-level priority. Nearly two thirds of those surveyed did not have a chief information security officer, although more than half (53 per cent) of companies with revenues over over a $1bn a year did. Viruses and Trojans are still rated the biggest threat overall, but employee misconduct was considered the second biggest threat. Theft of proprietary information was rated the lowest threat.
Šaltinis: vnunet.com
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.

Facebook Comments

New comment


Captcha

Associated articles

NASA to merge media archives

Space officials want proposals for a NASA archiving system that would create a one-stop multimedia source for the public more »

Google Focuses Local Ad Targeting

Search giant Google will offer its advertisers the chance to more tightly target the geographical areas where their ads will be seen more »

'Linspiration' Hits Lindows

Lindows executives have rolled out a new moniker for its desktop Linux software and the name is...Linspire more »

Spam reaches new high in March

More than one million junk emails sent on one day alone more »

Internet nonprofit meets with U.N.

U.S. company controls domain names; security, governing discussed more »

ITT fashion spring “CeBIT 2004”

18th world’s largest information technologies’ and telecommunications’ exhibition “CeBIT 2004”, which takes place in Hanover (Germany) annually, has already ended. more »

Foreign fraud hits U.S. e-commerce firms hard

Top offending countries: Yugoslavia, Nigeria, Romania more »

'Buffalo Spammer' convicted

A man accused of using EarthLink Inc. e-mail accounts to release a flood of unsolicited commercial ("spam") e-mail on the Internet has been convicted on charges of identity theft and falsifying business records more »

Google Gets E-Mail

Search player Google is getting into the e-mail game more »

New eMail Tales in Microsoft's Minn. Case

Microsoft officials sought to dissuade Intel from investing in handwriting software startup GO Corporation in 1990, according to the latest round of e-mail evidence more »